diff options
| author | Gordon Tetlow <gordon@FreeBSD.org> | 2026-06-07 03:24:17 +0000 |
|---|---|---|
| committer | Mark Johnston <markj@FreeBSD.org> | 2026-06-09 19:15:22 +0000 |
| commit | ec6bfa889b839645961113344186b85ed8477f48 (patch) | |
| tree | bccbaaacd6ece2c3d0b749e35de9add9675737e7 /ObsoleteFiles.inc | |
| parent | e417948e6139cc69ebff46ecb747695db82cd14a (diff) | |
openssl: Fix multiple vulnerabilities
This is a rollup commit from upstream to fix:
Reject oversized inputs in ASN1_mbstring_ncopy()
cms: kek_unwrap_key: Fix out-of-bounds read in check-byte validation
cms: kek_unwrap_key: test for fix out-of-bounds read in check-byte validation
Avoid length truncation in ASN1_STRING_set
Reject potentially forged encrypted CMS AuthEnvelopedData messages
Fix potential NULL dereference processing CMS PasswordRecipientInfo
Match the local q DHX parameter against the peer's q
Apply the buffered IV on the AES-OCB EVP_Cipher() path
Fix handling of empty-ciphertext messages in AES-GCM-SIV and AES-SIV
Fix possible use-after-free in OpenSSL PKCS7_verify()
Approved by: so
Obtained from: OpenSSL
Security: FreeBSD-SA-26:35.openssl
Security: CVE-2026-7383
Security: CVE-2026-9076
Security: CVE-2026-34180
Security: CVE-2026-34182
Security: CVE-2026-42766
Security: CVE-2026-42770
Security: CVE-2026-45445
Security: CVE-2026-45446
Security: CVE-2026-45447
Diffstat (limited to 'ObsoleteFiles.inc')
0 files changed, 0 insertions, 0 deletions
